July 5, 2022 at 11:17AM

■■■□□ Zero-Day: Google on Monday shipped security updates to address a high-severity zero-day vulnerability in its Chrome web browser that it said is being exploited in the wild. https://amp.thehackernews.com/thn/2022/07/update-google-chrome-browser-to-patch.html https://t.me/cKure/11585

July 5, 2022 at 11:17AM

■■□□□ Clever phishing method bypasses MFA using Microsoft WebView2 apps. https://www.bleepingcomputer.com/news/security/clever-phishing-method-bypasses-mfa-using-microsoft-webview2-apps/amp/ https://t.me/cKure/11584

July 5, 2022 at 11:17AM

■□□□□ GitHub Copilot works so well because it steals open-source code and strips credit. https://sfconservancy.org/blog/2022/jun/30/give-up-github-launch/ https://thenextweb.com/news/github-copilot-works-so-well-because-it-steals-open-source-code-strips-credit/amp https://t.me/cKure/11583

July 5, 2022 at 11:12AM

■■■□□ Zero-Day: Tens of Jenkins plugins are affected by zero-day vulnerabilities. https://securityaffairs.co/wordpress/132836/security/jenkins-plugins-zero-day-flaws.html https://t.me/cKure/11582

July 2, 2022 at 08:31AM

■■■■□ OpenSSL to Release Security Patch for Remote Memory Corruption Vulnerability. The issue has been identified in OpenSSL version 3.0.4, which was released on June 21, 2022, and impacts x64 systems with the AVX-512 instruction set. OpenSSL 1.1.1 as well as OpenSSL forks BoringSSL and LibreSSL are not affected. https://amp.thehackernews.com/thn/2022/06/openssh-to-release-security-patch-for.html https://t.me/cKure/11576